Threat Level: green Handler on Duty: Rob VandenBrink

SANS ISC InfoSec Handlers Diary Blog

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

FreeBSD packet filter (pf) DoS using fragments.

Published: 2006-01-25
Last Updated: 2006-01-25 18:44:53 UTC
by Swa Frantzen (Version: 1)
0 comment(s)
FreeBSD announced a patch for a vulnerability that can trigger a kernel panic due to crafted fragments and their handling in pf(4).

Workrounds are available: do not use "scrub fragment crop" or "scrub fragment drop-ovl" in the pf.conf(5)

More information:
Swa Frantzen
0 comment(s)
Diary Archives